Cookie Consent by Free Privacy Policy Generator ๐Ÿ“Œ Nightingale - Docker Environment For Pentesting Which Having All The Required Tool For VAPT

๐Ÿ  Team IT Security News

TSecurity.de ist eine Online-Plattform, die sich auf die Bereitstellung von Informationen,alle 15 Minuten neuste Nachrichten, Bildungsressourcen und Dienstleistungen rund um das Thema IT-Sicherheit spezialisiert hat.
Ob es sich um aktuelle Nachrichten, Fachartikel, Blogbeitrรคge, Webinare, Tutorials, oder Tipps & Tricks handelt, TSecurity.de bietet seinen Nutzern einen umfassenden รœberblick รผber die wichtigsten Aspekte der IT-Sicherheit in einer sich stรคndig verรคndernden digitalen Welt.

16.12.2023 - TIP: Wer den Cookie Consent Banner akzeptiert, kann z.B. von Englisch nach Deutsch รผbersetzen, erst Englisch auswรคhlen dann wieder Deutsch!

Google Android Playstore Download Button fรผr Team IT Security



๐Ÿ“š Nightingale - Docker Environment For Pentesting Which Having All The Required Tool For VAPT


๐Ÿ’ก Newskategorie: IT Security Nachrichten
๐Ÿ”— Quelle: kitploit.com


In today's technological era, docker is the most powerful technology in each and every domain, whether it is Development, cyber security, DevOps, Automation, or Infrastructure.

Considering the demand of the industry, I would like to introduce my idea to create a NIGHTINGALE: docker image for pentesters.

This docker image is ready to use environment will the required tools that are needed at the time of pentesting on any of the scopes, whether it can be web application penetration testing, network penetration testing, mobile, API, OSINT, or Forensics.

The best part is you can either create an altered docker image or pull the pre-built docker image from the hub.

Some of the best features are listed below, I would highly recommend going through it and starting penetrating into the application. Link to access tool list : tool list


Pros

  1. No need to install multiple programming language support and multiple modules.
  2. Booting process is very fast as per the virtualization concept.
  3. Need as per use resource of the host machine.
  4. All pre-install tools are installed and if you install any new software or tool use can go with that option.
  5. You can perform vulnerability assessment and penetration testing of any scope.
  6. You can access this docker container via browser by calling your local address.

Cons

  1. You can run the container over cloud server but canโ€™t perform mobile pentesting.
  2. Creating tunnel with SSH canโ€™t help you to provide the connection to your physical device or virtual environment.

Why?

The Reason behind creating this Docker file is to make a platform-independent penetration toolkit. It includes all the useful tools that will be required for a penetration tester (You can refer to the tool list section for the same).

Architecture Diagram of the NIGHTINGALE.

Diagram

Docker Image Build and Run

  • Take a clone of the repository
git clone --depth 1 https://github.com/RAJANAGORI/Nightingale.git
  • Change the Directory
cd Nightingale
  • Now build the Docker Image.
docker build -t rajanagori/nightingale .
  • After Creating the Docker Image, Login into the image and Happy Hacking.... ;-)
docker run -ti --hostname nightingale  rajanagori/nightingale /bin/bash
  • Now, you can directly access Nightingale interactive terminal using the browser
docker run -it -p 0.0.0.0:8080:7681 -d rajanagori/nightingale /home/binaries/ttyd -p 7681 bash
  • If you want to run MobSF along with the nightingale then I will give you good news now you can do the same....!!

part 1

docker run -it -p 0.0.0.0:8080:7681 -p 0.0.0.0:8081:8081 -d rajanagori/nightingale /home/binaries/ttyd -p 7681 bash

part 2

cd /home/tools_mobile_vapt/Mobile-Security-Framework-MobSF/
source venv/bin/activate
./run 0.0.0.0:8081 &
  • Call your browser and hit 127.0.0.1:8080 for the nightingale terminal and 127.0.0.1:8081 for MobFs to become you will be prooo!!!!

  • If you want to bind your host machine directory to your container directory then you can do the same.

docker run -it -p 0.0.0.0:8080:7681 -p 0.0.0.0:8081:8081 -v /<your_host_machine_directory_path>:/<your_container_directory_path> -d rajanagori/nightingale /home/binaries/ttyd -p 7681 bash

For Localtunnel

  • Hit 127.0.0.1:8080 in your browser and you will be able to access the Nightingale terminal
  • Now, run the following command in your terminal
nvm install v16.14.0 && npm install -g localtunnel

and hit this command

lt --port 7681 --subdomain nightingale

Now, Click on the link generated and have fun with Nightingale !!!

To start, Restart and Stop the Postgresql database

  • To start the service
service postgresql start
  • To Restart the service
service postgresql restart
  • To Stop the service
service postgresql stop

Note: Use of Postgresql is for msfConsole.

Please feel free to contribute to the tool



...



๐Ÿ“Œ Best VAPT Service Providers and VAPT Companies in India for 2024


๐Ÿ“ˆ 52.06 Punkte

๐Ÿ“Œ Best VAPT Service Providers and VAPT Companies in India for 2024


๐Ÿ“ˆ 52.06 Punkte

๐Ÿ“Œ Best VAPT Service Providers and VAPT Companies in India


๐Ÿ“ˆ 52.06 Punkte

๐Ÿ“Œ Pentesting vs. Pentesting as a Service: Which is better?


๐Ÿ“ˆ 37.23 Punkte

๐Ÿ“Œ In theory, could you compile all of the libraries required to run a Linux environment into a single, massive .so file?


๐Ÿ“ˆ 29.94 Punkte

๐Ÿ“Œ Pentesting vs. Bug Bounty vs. Pentesting ???


๐Ÿ“ˆ 28.38 Punkte

๐Ÿ“Œ UWP Community: Nightingale โ€“ Mรคchtiges REST-Tool im schicken Fluent-Design


๐Ÿ“ˆ 27.75 Punkte

๐Ÿ“Œ While You Were Offline: Beyoncรฉ Is Having Twins and the Internet Is Having a Cow


๐Ÿ“ˆ 26.43 Punkte

๐Ÿ“Œ TOP 7 VAPT Companies in India


๐Ÿ“ˆ 26.03 Punkte

๐Ÿ“Œ Top VAPT Companies in 2024


๐Ÿ“ˆ 26.03 Punkte

๐Ÿ“Œ VAPT


๐Ÿ“ˆ 26.03 Punkte

๐Ÿ“Œ VAPT Company in Pune | Vulnerability Assessment Services


๐Ÿ“ˆ 26.03 Punkte

๐Ÿ“Œ VAPT India


๐Ÿ“ˆ 26.03 Punkte

๐Ÿ“Œ VAPT India


๐Ÿ“ˆ 26.03 Punkte

๐Ÿ“Œ How to Choose the Best VAPT Testing Company for Your Business


๐Ÿ“ˆ 26.03 Punkte

๐Ÿ“Œ What is VAPT Testing?


๐Ÿ“ˆ 26.03 Punkte

๐Ÿ“Œ Understanding VAPT: A Simple Guide to Vulnerability Assessment and Penetration Testing


๐Ÿ“ˆ 26.03 Punkte

๐Ÿ“Œ Penta - Open Source All-In-One CLI Tool To Automate Pentesting


๐Ÿ“ˆ 24.88 Punkte

๐Ÿ“Œ IoT-PT - A Virtual Environment For Pentesting IoT Devices


๐Ÿ“ˆ 23.83 Punkte

๐Ÿ“Œ Asnap - Tool To Render Recon Phase Easier By Providing Updated Data About Which Companies Owns Which Ipv4 Or Ipv6 Addresses


๐Ÿ“ˆ 23.09 Punkte

๐Ÿ“Œ Projekt Nightingale: Google wertet Daten von Millionen US-Patienten aus


๐Ÿ“ˆ 22.37 Punkte

๐Ÿ“Œ 'Nightingale Project' to Turn Over Millions of Medical Records to Google


๐Ÿ“ˆ 22.37 Punkte

๐Ÿ“Œ "Project Nightingale": 50 Millionen Patientendaten landen auf Googles Servern


๐Ÿ“ˆ 22.37 Punkte

๐Ÿ“Œ Johnathan Nightingale Beep up to 1.3.4 race condition privilege escalation


๐Ÿ“ˆ 22.37 Punkte

๐Ÿ“Œ Fastly ernennt Todd Nightingale als neuen CEO - Security-Insider


๐Ÿ“ˆ 22.37 Punkte

๐Ÿ“Œ Survival-Hoffnung Nightingale zeigt endlich mehr von seinen einzigartigen Open Worlds


๐Ÿ“ˆ 22.37 Punkte

๐Ÿ“Œ GroรŸe Survival-Hoffnung Nightingale verzichtet komplett auf PvP โ€“ Setzt Fokus auf Erkundung mit Regenschirmen


๐Ÿ“ˆ 22.37 Punkte

๐Ÿ“Œ "Skull and Bones", "Nightingale": Neue PC-Spiele im Februar 2024


๐Ÿ“ˆ 22.37 Punkte

๐Ÿ“Œ Google's Secret 'Project Nightingale' Gathers Personal Health Data on Millions of Americans


๐Ÿ“ˆ 22.37 Punkte











matomo